Package: autofs5-ldap
Version: 5.0.4-3
Severity: grave
Justification: causes non-serious data loss

vv:/var/log# grep autofs daemon.log
Nov 24 21:42:51 vv automount[13952]: parse_ldap_config: lookup(ldap): 
Configuration file /etc/autofs_ldap_auth.conf exists, but is not usable. Please 
make sure
that it is owned by root, group is root, and the mode is 0600.

When coming from a working autofs4 setup, $subject configfile is installed
with the wrong mode (0644 instead of the suggested 0600).

This renders a user-maintained system unable to use until somebody who
- knows how to chmod
- can chmod
fixes the issue (and admittedly dselect'ed this update).

Furthermore, upon configuration, the package should ask for which
  LDAP_URI
  MAP_OBJECT_CLASS/MAP_ATTRIBUTE
attributes it should configure the system for in order to prompt the
user to ask somebody who knows to make sense out of it.

Ideally these MAP_OBJECT_CLASS/MAP_ATTRIBUTE would be probed
according to the given LDAP_URI server, obviously.

-- System Information:
Debian Release: squeeze/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: i386 (i686)

Kernel: Linux 2.6.30-2-686 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /busy/ash

Versions of packages autofs5-ldap depends on:
ii  autofs5                  5.0.4-3         kernel-based automounter for Linux
ii  libc6                    2.10.1-7        GNU C Library: Shared libraries
ii  libkrb5-3                1.7dfsg~beta3-1 MIT Kerberos runtime libraries
ii  libldap-2.4-2            2.4.17-2.1      OpenLDAP libraries
ii  libsasl2-2               2.1.23.dfsg1-2  Cyrus SASL - authentication abstra
ii  libssl0.9.8              0.9.8k-6        SSL shared libraries
ii  libxml2                  2.7.6.dfsg-1    GNOME XML library

autofs5-ldap recommends no packages.

autofs5-ldap suggests no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to